|
Regulatory Compliance Reviews |
|
Capsicum has developed a simple yet comprehensive program to provide
regulatory compliance for information technology environments. Capsicum
offers consulting services related to HIPAA (Health Insurance Privacy
and Accountability Act), COPPA (Children’s Online Privacy Protection
Act), SOX (Sarbanes-Oxley Act), GLB (Gramm-Leach-Bliley Act), Personal
Data Privacy and Security Act, and other industry programs.
Our compliance program includes the following services:
- Assess – Review current policies, processes, organization and technology to develop preliminary findings and recommendations. Determine
applicable regulations and develop a detailed analysis that will
provide a “composite” view of the organization’s requirements.
- Plan –
Select recommended actions, determine risks and benefits, develop
estimates for remediation activities, and provide a summary of the
financial impacts (annualized) and the potential return on these
investments.
- Design – Develop the detailed tasks and technology architecture necessary to execute the compliance program.
- Implement / Remediate
– Articulate and document processes (additions, deletions, and
changes), with relevant controls isolated, and technology (hardware,
software, network) that should be acquired, installed, and/or
configured.
- Monitor/Upgrade – Evaluate, subsequent to a comprehensive or more targeted compliance effort, each element on a quarterly or semi-annual basis.
- Compliance
– Coordinate, consult, and provide the services and appropriate
documentation. Capsicum helps the organization become compliant with
relevant regulations, and “best practices.” The benefit to the organization of this team approach includes: (1) reduced costs, (2) use of broad
industry knowledge, (3) coordination of compliance and technical
aspects, (4) increased efficiency, (5) completion of work in shorter
time, (6) reduced interference with the organization’s activities, and
(6) in many cases, use of information platforms that already exist.
|